Privacy and Information Security Policy
Dated 22 May 2026
This Privacy and Information Security Policy sets out the ways in which Glyphe (“Glyphe”, “we”, “us”, “our”) collects, uses, discloses, stores, holds, processes and otherwise handles the personal information we collect about you, and the information security practices used to protect your data. This policy also describes how you may exercise your rights under applicable privacy and data protection laws.
Glyphe provides a secure AI platform (the “Services”) that assists professionals by providing access to complex legal automation workflows and productivity tools. Glyphe is dedicated to protecting your privacy and personal information in accordance with applicable law and this Privacy Policy.
This Privacy Policy operates in addition to any agreements which may be entered into between you and Glyphe, including our Platform Trial Terms.
We recommend that you read this policy in full to ensure you are completely informed about Glyphe’s collection and use of your personal information. By using our Services, you agree to our handling of your personal information as described in this policy.
Any references to personal information or similar used in this policy has the meaning given to it under the Privacy Act 1988 (Cth) or under equivalent legislation. If you have any additional questions about our handling of your personal information, please contact us using the contact details set out at the end of this privacy policy.
What personal information we collect
Glyphe collects personal information from you or about you through a number of different sources including through our websites, for example at https://app.glyphe.ai, when providing you with our Services and through other interactions you have with Glyphe.
Sources of the information we collect
- Information that you provide directly.
- We may collect information from you when you create a Glyphe user account, or interact with us through other means. This personal information might include your account information (e.g. name, email address, information about your profession and professional experience, language preferences, and account credentials with us), and communication information (e.g. when you contact us about our Services, when you complete a survey, provide feedback, when you interact with our Websites, or when you request support).
- Information that we collect automatically.
- We collect your personal information indirectly, including through automated means from your computer or device. This information includes log data (e.g. information that your browser or device automatically sends when you use our Services or access our website, including your IP address, browser information, the date and time of your request, and how you otherwise use certain features or interact with us), service usage data when you interact with the Services and other metadata and account identifiers.
- Cookies and Similar Technologies.
- We may use cookies, scripts, or similar technologies to manage the Services and to collect information about you and your use of the Services and interactions with our website. These technologies help us to personalise your experience, understand your preferences, improve your website experience, and analyse the use of our Services to make them safer and more useful to you.
- Device Information.
- We may also collect certain device and connection-specific information when you install, access, or use our Services and interact with our website. This includes information such as the name of the device, operating system, device identifiers, and browser you are using.
How We Use Personal Information
We may use personal information covered by this policy for the following purposes:
- to provide and maintain our Services;
- to develop, improve, and update our Services and provide support, including by analysing the effectiveness of our Services and understanding how our Services are used;
- to carry out and conduct research or surveys;
- to personalise your use of our Services;
- to communicate with you, including to send you information or marketing about our services;
- to prevent fraud, criminal activity, or misuses of our Services, and to protect the security of our systems and Services; and
- to comply with legal obligations and to protect the rights, privacy, safety, or property of our users.
We may aggregate or de-identify personal information so that you can no longer be identified and use such data for broader purposes to improve the Glyphe platform and our provision of Services.
Who We Share Your Personal Information With
We may disclose your personal information in certain circumstances, such as where we are required or authorised by law or where you have consented to us doing so.
We may disclose your personal information to:
- others in accordance with a request made by you;
- our related companies and business partners; and
- persons engaged in providing us with professional, business, and technology services when reasonably required, including for the purposes of website and data hosting, research, auditing, marketing, and customer support.
When making such a disclosure we will take reasonable steps to ensure that the recipient is bound by privacy obligations.
How We Keep Your Personal Information Secure
The security of your information is important to us. We protect your personal information through technical and organisational measures designed to mitigate the risk of unlawful or unauthorised access, destruction, loss, alteration, disclosure, or use of your personal information. The measures are designed to provide a level of security appropriate to the risk of processing.
We may store some personal information we collect electronically on the cloud in electronic records. The reasonable steps we take to protect your personal information include, but are not limited to:
- the use of firewalls, anti-virus software and ongoing internal monitoring;
- the use of per-user encryption keys;
- policies on document storage security;
- security measures for access to our systems and those deployed by the third parties we engage;
- identification procedures prior to providing access to information; and
- website protection security measures.
We also deploy application-layer encryption and encryption in transit protocols to protect your personal information from unauthorised disclosure or loss.
International Data Transfers
We may transfer your personal information outside Australia to certain third party service providers located in Singapore and the U.S. who are responsible for processing the documents which are uploaded and analysed on the Glyphe platform. These transfers are subject to enterprise terms which set out protections for your data and requirements for the service providers to comply with applicable laws when handling your data, such as prohibitions from using your data for any model training.
Data Retention
We may retain personal information we collect from you for as long as necessary for the purposes described in this policy. If you have a specific customer agreement with us, we will delete your data in accordance with that customer agreement.
How long we retain personal information will depend on a number of factors including whether we need to retain your data to:
- comply with the terms of our customer agreement with you;
- comply with or demonstrate compliance with our legal obligations, to resolve disputes, or to enforce our agreements.
We will take reasonable steps to delete your personal information once the reason for which we collected your personal information has expired.
Your personal privacy rights
You have the following rights in relation to your personal information:
- right to request access or correction of any personal information we hold about you;
- right to complain to a supervisory authority regarding our handling of your personal information.
Updates to this Privacy Policy
We may update this policy from time to time and we will take reasonable steps to inform you about any changes we make.
Contact Us
If you have any questions or concerns about our use of your personal information, or if you wish to make a complaint, please contact us at support@glyphe.ai. If you are not satisfied with the way in which we’ve handled your complaint, you may also submit a complaint to the Office of the Australian Information Commissioner.